You have a Microsoft Sentinel workspace.
You need to identify which rules are used to detect advanced multistage attacks that comprise two or more alerts or activities. The solution must minimize administrative effort.
Which rule type should you query?
Fukacz
Highly Voted 1 year, 8 months agoApocalypse03
Highly Voted 1 year, 5 months agochepeerick
Most Recent 7 months, 1 week agochepeerick
7 months, 3 weeks agoherta
1 year, 4 months ago